UNCLASSIFIED

Update dependency SonarSource/docker-sonarqube to v8.9.1

14 jobs for renovate/sonarsource-docker-sonarqube-8.x in 11 minutes and 17 seconds (queued for 16 seconds)
Status Job ID Name Coverage
  .Pre
passed #4126990
load-scripts

00:00:09

 
  Preflight
passed #4126992
folder-structure

00:00:11

passed #4126993
hardening-manifest

00:00:13

passed #4126991
trufflehog

00:00:09

 
  Lint
passed #4126994
wl-compare-lint

00:00:10

 
  Import Artifacts
passed #4126995
import-artifacts

00:01:14

 
  Scan Artifacts
passed #4126996
clamav-scan

00:02:14

 
  Build
passed #4126997
build

00:02:39

 
  Scanning
passed #4126998
anchore-scan

00:03:37

passed #4126999
ironbank-dsop-privileged
openscap-compliance

00:01:17

passed #4127000
twistlock-scan

00:01:20

 
  Csv Output
passed #4127001
csv-output

00:00:29

 
  Check Cves
failed #4127002
allowed to fail
check-cves

00:00:11

 
  Documentation
passed #4127003
create-tar

00:01:02

 
Name Stage Failure
failed
check-cves Check Cves
ERROR: anchore_cve                   VULNDB-257084                 commons-compress-1.20         /opt/sonarqube/lib/extensions/sonar-cfamily-plugin-6.20.1.32841.jar:commons-compress    
ERROR: anchore_cve VULNDB-257084 commons-compress-1.20 /opt/sonarqube/lib/extensions/sonar-javascript-plugin-7.4.4.15624.jar:commons-compress
ERROR: anchore_cve GHSA-5mg8-w23w-74h3 guava-28.2-jre /opt/sonarqube/lib/scanner/scanner-enterprise-8.9.1.44547-all.jar:guava
ERROR: anchore_cve GHSA-5mg8-w23w-74h3 guava-28.2-jre /opt/sonarqube/lib/sonar-application-8.9.1.44547.jar:guava
ERROR: anchore_cve CVE-2020-13697 nanohttpd-2.3.1 /opt/sonarqube/lib/sonar-application-8.9.1.44547.jar:nanohttpd
ERROR: twistlock_cve CVE-2020-17541 libjpeg-turbo-1.5.3-10.el8 None
ERROR: twistlock_cve CVE-2021-22118 spring-core_spring-core-5.2.13 None
Cleaning up file based variables
ERROR: Job failed: command terminated with exit code 1